Try our new research platform with insights from 80,000+ expert users

Azure DDoS Protection vs Microsoft Entra ID Protection comparison

 

Comparison Buyer's Guide

Executive Summary

Review summaries and opinions

We asked business professionals to review the solutions they use. Here are some excerpts of what they said:
 

ROI

Sentiment score
7.2
Azure DDoS Protection offers cost-effective security for public IPs, benefiting users with ROI despite varying enterprise costs.
Sentiment score
7.1
Microsoft Entra ID Protection achieved ROI in three years, enhancing efficiency and user satisfaction despite higher costs.
There is a return on investment in terms of time-saving, control, and ease of manageability of the environment.
 

Customer Service

Sentiment score
6.3
Educational institutions commend Azure DDoS Protection's swift support, while others experience slower response times affecting satisfaction.
Sentiment score
6.1
Entra ID Protection support receives mixed reviews; while responsive for some, others report delays, reliance on documentation, and inconsistent ticket handling.
The response time is very slow, especially when multiple teams are required to collaborate on a case.
Tickets often bounce from person to person, requiring the sharing of information multiple times.
They often refer to internal blogs, which doesn't offer much new information and can limit our capabilities in troubleshooting.
My teammates have had good communication with Microsoft.
 

Scalability Issues

Sentiment score
6.9
Azure DDoS Protection excels in scalability and reliability, ideal for large enterprises, enhancing security in extensive environments.
Sentiment score
8.6
Microsoft Entra ID Protection offers scalable, adaptable solutions with high performance, praised for flexibility and cloud-native capabilities across industries.
Since it is a cloud computing product, it can accommodate a range of company sizes, from a few users to large businesses.
 

Stability Issues

Sentiment score
7.6
Azure DDoS Protection is highly stable, rated 8/10, with minimal configuration issues and no downtime or false positives reported.
Sentiment score
8.0
Microsoft Entra ID Protection and Azure AD are generally stable, reliable, and perform well, with minor and infrequent issues.
 

Room For Improvement

Azure DDoS Protection requires improved interface consistency, reporting, configuration simplicity, bandwidth optimization, enhanced services, and AI-driven auto-remediation.
Microsoft Entra ID Protection needs better management, integration, scalability, and simplified user interface, with key improvements for Mac support.
Integrating more auto-remediation features with an AI engine would enhance its efficiency.
I have noticed some false positives with the Web Application Firewall yet not with DDoS Protection.
I suggest adding more services and additional services, which would be beneficial.
Microsoft has not offered control over how they calculate high or low-risk scenarios.
There is no write-back feature from the cloud to local, which would allow me to use my own credentials from the cloud tenant securely.
There is room for improvement in the ability for Entra ID Protection to inherit roles and configurations from whatever solution I am migrating from.
 

Setup Cost

Azure DDoS Protection offers expensive but comprehensive protection with trial, special pricing for education, and no extra fees for some uses.
Microsoft Entra ID Protection's pricing is seen as competitive, yet sometimes perceived as complex or expensive by enterprise buyers.
If used with Front Door or Web Application Firewall, DDoS Protection is included without additional cost.
The pricing is somewhat costly, usually around $3,000 to $4,000 per month.
Compared to competitors, it is good.
Entra ID Protection is not badly priced, but some clients, especially in medium to smaller scale companies in third-world countries, find it quite expensive.
Microsoft Entra ID requires additional licensing components.
The pricing for Microsoft Entra ID protection is not expensive.
 

Valuable Features

Azure DDoS Protection offers seamless integration, robust security, and scalability, despite higher costs, providing significant ROI for vulnerable environments.
Microsoft Entra ID Protection integrates seamlessly, enhancing security with multifactor authentication, conditional access, and scalable user management.
The security architecture with Azure DDoS Protection is critical for safeguarding our financial organization's infrastructure.
The integration of various tools with Azure Firewall, like DDoS Protection, Web Application Firewall, and Azure Front Door, is quite effective.
We can plug and play components to build applications or conduct research and development easily.
Having a single sign-on feature with Entra ID ensures seamless access to various applications, even those with significant security constraints.
These features ease the job of security analysts, providing a better vision of user activities and potential risks.
Microsoft Entra ID can detect if a user is at risk and then execute actions based on the risk level.
 

Categories and Ranking

Azure DDoS Protection
Ranking in Microsoft Security Suite
21st
Average Rating
8.2
Reviews Sentiment
7.0
Number of Reviews
8
Ranking in other categories
Distributed Denial-of-Service (DDoS) Protection (8th)
Microsoft Entra ID Protection
Ranking in Microsoft Security Suite
9th
Average Rating
8.6
Reviews Sentiment
7.2
Number of Reviews
16
Ranking in other categories
Identity Management (IM) (8th), Identity Threat Detection and Response (ITDR) (2nd)
 

Mindshare comparison

As of April 2025, in the Microsoft Security Suite category, the mindshare of Azure DDoS Protection is 2.2%, up from 2.0% compared to the previous year. The mindshare of Microsoft Entra ID Protection is 4.6%, up from 3.7% compared to the previous year. It is calculated based on PeerSpot user engagement data.
Microsoft Security Suite
 

Featured Reviews

Venkat Raju Mallipudi - PeerSpot reviewer
Acts as an additional layer of protection, provides endpoint security but not very easy to configure
It's not very easy to configure, in my view. We have to do some work behind the scenes. It's not very simple. We have to do it very carefully, and we need to monitor this enablement as well. But apart from that, I didn't see any kind of challenges. So, in my opinion, configuration is the main trouble for them. It is something that can be done to be better. Not just configuration. You need an expert who knows the ins and outs of these security solutions. In my experience, people struggle with configuration. While configuring, we get this error, we get that error, and then we try to fix those issues. I have seen those. It's not straightforward.
Mahender Nirwan - PeerSpot reviewer
Access to other software is just one click away and suitable for big organizations
Currently, we have limited use of Microsoft AD. We only use it to see if user blocks are available. If they are, we unblock the account and get access accordingly. AD has paid access control features. We can add access control over AD. For example, for documentation, we use an Outline tool. It's open source, and we add our company's knowledge base to it. It's an alternative to Confluence. We don't want everyone to have access to all documentation. If I create documentation for my team, only my team should have access, not support or sales. We can add these scopes or access controls over AD. Once integrated, the person will get the appropriate access control features upon logging in. Role-based access control is a great feature of Active Directory.
report
Use our free recommendation engine to learn which Microsoft Security Suite solutions are best for your needs.
848,207 professionals have used our research since 2012.
 

Top Industries

By visitors reading reviews
Computer Software Company
18%
Financial Services Firm
13%
Government
8%
Manufacturing Company
7%
Computer Software Company
17%
Financial Services Firm
14%
Government
9%
Manufacturing Company
8%
 

Company Size

By reviewers
Large Enterprise
Midsize Enterprise
Small Business
 

Questions from the Community

What do you like most about Azure DDoS Protection?
Azure DDoS Protection offers superior protection against denial-of-service attacks.
What is your experience regarding pricing and costs for Azure DDoS Protection?
The pricing is somewhat costly, usually around $3,000 to $4,000 per month. Managing this expense is tough, especially since we haven't received everything we need for our capital expenditure manage...
What needs improvement with Azure DDoS Protection?
The dashboard lacks insights and user-friendliness, as most data is logged into metrics like Log Analytics workspaces. It would be beneficial to have more detailed insights available directly on th...
What is your experience regarding pricing and costs for Azure Active Directory Identity Protection?
The pricing for Microsoft Entra ID protection is not expensive. It varies based on the company's size and quality.
What needs improvement with Azure Active Directory Identity Protection?
I have set up my Active Directory locally for the same domain. However, Entra ID lacks a function to synchronize from the cloud to the local directory. This is a significant issue since there is no...
 

Also Known As

No data available
Azure Active Directory Identity Protection, Azure AD Identity Protection
 

Overview

Find out what your peers are saying about Azure DDoS Protection vs. Microsoft Entra ID Protection and other solutions. Updated: March 2025.
848,207 professionals have used our research since 2012.